From cbb1cda67f61b34c89fb49c8e2267ec6217bc33f Mon Sep 17 00:00:00 2001 From: "Dr. David von Oheimb" Date: Wed, 20 Jul 2022 14:38:20 +0200 Subject: CHANGES.md: Add entries for contributions to 3.1 by DDvO Reviewed-by: Tomas Mraz Reviewed-by: Paul Dale Reviewed-by: Hugo Landau Reviewed-by: David von Oheimb (Merged from https://github.com/openssl/openssl/pull/18833) --- CHANGES.md | 39 +++++++++++++++++++++++++++++++++------ 1 file changed, 33 insertions(+), 6 deletions(-) (limited to 'CHANGES.md') diff --git a/CHANGES.md b/CHANGES.md index c314581ce7..9a3d86c69c 100644 --- a/CHANGES.md +++ b/CHANGES.md @@ -47,12 +47,13 @@ OpenSSL 3.1 *Dmitry Belyavskiy, Nicola Tuveri* - * Add new SSL APIs to aid in efficiently implementing TLS/SSL fingerprinting. The - SSL_CTRL_GET_IANA_GROUPS control code, exposed as the SSL_get0_iana_groups() - function-like macro, retrieves the list of supported groups sent by the peer, - and the function SSL_client_hello_get_extension_order() populates a caller-supplied - array with the list of extension types present in the ClientHello, in order of - appearance. + * Add new SSL APIs to aid in efficiently implementing TLS/SSL fingerprinting. + The SSL_CTRL_GET_IANA_GROUPS control code, exposed as the + SSL_get0_iana_groups() function-like macro, retrieves the list of + supported groups sent by the peer. + The function SSL_client_hello_get_extension_order() populates + a caller-supplied array with the list of extension types present in the + ClientHello, in order of appearance. *Phus Lu* @@ -138,6 +139,32 @@ OpenSSL 3.1 *Tomáš Mráz* + * Fix and extend certificate handling and the apps `x509`, `verify` etc. + such as adding a trace facility for debugging certificate chain building. + + *David von Oheimb* + + * Various fixes and extensions to the CMP+CRMF implementation and the `cmp` app + in particular supporting requests for central key generation, generalized + polling, and various types of genm/genp exchanges defined in CMP Updates. + + *David von Oheimb* + + * Fixes and extensions to the HTTP client and to the HTTP server in `apps/` + like correcting the TLS and proxy support and adding tracing for debugging. + + *David von Oheimb* + + * Extended the CMS API for handling `CMS_SignedData` and `CMS_EnvelopedData`. + + *David von Oheimb* + + * Fixed and extended `util/check-format.pl` for checking adherence to the + coding style . + The checks are meanwhile more complete and yield fewer false positives. + + *David von Oheimb* + OpenSSL 3.0 ----------- -- cgit v1.2.3